In OpenStack Ironic through 35.x before a3f6d73, during image handling, an infinite loop in checksum calculations can occur via the file:///dev/zero URL.
References
| Link | Resource |
|---|---|
| https://bugs.launchpad.net/ironic/+bug/2150332 | Exploit Issue Tracking Third Party Advisory |
| https://opendev.org/openstack/ironic/commit/a3f6d735ac3642ab95b49142c7305f072ae748d0 | Patch |
| https://security.openstack.org/ossa/OSSA-2026-013.html | Patch Vendor Advisory |
| https://bugs.launchpad.net/ironic/+bug/2150332 | Exploit Issue Tracking Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-05-14 02:17
Updated : 2026-06-17 21:11
NVD link : CVE-2026-44919
Mitre link : CVE-2026-44919
CVE.ORG link : CVE-2026-44919
JSON object : View
Products Affected
openstack
- ironic
CWE
CWE-696
Incorrect Behavior Order
